CWE-362
Medium likelihoodConcurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')
The product contains a concurrent code sequence that requires temporary, exclusive access to a shared resource, but a timing window exists in which the shared resource can be modified by another code sequence operating concurrently.
2,393 vulnerabilities with CWE-362
CVE-2018-16079
MEDIUM
Google Chrome < 69.0.3497.81 - URL Spoofing via Race Condition in Permission Prompts
CVSS 5.3
CVE-2018-17244
MEDIUM
Elasticsearch Security <6.4.2 - Info Disclosure
CVSS 6.5
CVE-2018-5198
HIGH
Veraport G3 - Remote Code Execution via Race Condition in API Call
CVSS 8.1
CVE-2018-19489
MEDIUM
QEMU < 3.0.0 - Denial of Service via Race Condition in v9fs_wstat
CVSS 4.7
CVE-2018-16867
HIGH
qemu < 3.1.0 - Path Traversal and Arbitrary File Write via MTP Filename Sanitization
CVSS 7.8
CVE-2018-9519
MEDIUM
Android - Local Privilege Escalation via Race Condition in easelcomm_hw_build_scatterlist
CVSS 6.4
CVE-2018-15332
HIGH
F5 BIG-IP APM <7.1.7.2 - Privilege Escalation
CVSS 7.0
CVE-2018-19370
MEDIUM
Yoast SEO <9.2.0 - Command Injection
CVSS 6.6
CVE-2018-9539
HIGH
Android 8.0-9 - Use-After-Free via ClearKey CAS Descrambler Race Condition
CVSS 7.0
CVE-2018-6061
HIGH
Google Chrome <65.0.3325.146 - Heap Corruption
CVSS 7.5
CVE-2018-15687
HIGH
Canonical Ubuntu Linux < 240 - Race Condition
CVSS 7.0
CVE-2018-18559
HIGH
Linux Kernel 3.2.95-4.19 - Use-After-Free via AF_PACKET Socket Race Condition
CVSS 8.1
CVE-2018-7110
MEDIUM
HPE Service Governance Framework 4.2, 4.3 - Unauthenticated Information Disclosure via Race Condition
CVSS 5.9
CVE-2018-0480
MEDIUM
Cisco IOS XE - Denial of Service via Errdisable Per VLAN Feature Race Condition
CVSS 6.1
CVE-2018-17972
MEDIUM
Linux Kernel < 4.18.11 - Unauthenticated Kernel Stack Information Disclosure via Procfs Race Condition
CVSS 5.5
CVE-2018-9069
MEDIUM
HP 310s-14isk Firmware < 1.15 - Authenticated BIOS Flash Race Condition
CVSS 5.9
CVE-2018-17364
HIGH
OTCMS 3.61 - Remote Code Execution via accBackupDir Parameter
CVSS 8.1
CVE-2018-5905
HIGH
Android - Out-of-Bounds Memory Access via DIAG Services Race Condition
CVSS 7.0
CVE-2018-11818
HIGH
Android - Race Condition in LUT Configuration via ioctl
CVSS 7.0
CVE-2018-16976
HIGH
Gitolite < 3.6.9 - Unintended Repository Access via Race Condition in Migration Process
CVSS 8.1
CVE-2018-14625
MEDIUM
Linux Kernel - Information Disclosure via AF_VSOCK Race Condition
CVSS 5.3
CVE-2018-15499
MEDIUM
GEAR Software GEARAspiWDM 2.2.5.0 - Denial of Service via Race Condition in Memory Availability Check
CVSS 4.7
CVE-2018-15473
MEDIUM
OpenSSH < 7.7 - User Enumeration via Authentication Request Timing
CVSS 5.3
CVE-2018-8037
MEDIUM
Apache Tomcat 8.5.5-8.5.31 and 9.0.0.M9-9.0.9 - Information Disclosure via Race Condition
CVSS 5.9
CVE-2018-14329
MEDIUM
HTSlib 1.8 - Local Privilege Escalation
CVSS 4.7
Details
Vulnerabilities
2,393
Exploit Likelihood
Medium